NA

CVE-2023-24021

Published: 20/01/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Incorrect handling of '\0' bytes in file uploads in ModSecurity prior to 2.9.7 may allow for Web Application Firewall bypasses and buffer over-reads on the Web Application Firewall when executing rules that read the FILES_TMP_CONTENT collection.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

trustwave modsecurity

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #1029329 src:modsecurity-apache: CVE-2023-24021 In ModSecurity before 297, FILES_TMP_CONTENT sometimes lacked the complete content Package: src:modsecurity-apache; Maintainer for src:modsecurity-apache is Alberto Gonzalez Iniesta <agi@inittaborg>; Reported by: Tobias Frost <tobi@debianorg> ...
Synopsis Moderate: Red Hat JBoss Core Services Apache HTTP Server 2457 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update is now available for Red Hat JBoss Core ServicesRed Hat Product Security h ...
Synopsis Moderate: Red Hat JBoss Core Services Apache HTTP Server 2457 security update Type/Severity Security Advisory: Moderate Topic Red Hat JBoss Core Services Apache HTTP Server 2457 is now availableRed Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) bas ...
In ModSecurity before 296 and 3x before 308, HTTP multipart requests were incorrectly parsed and could bypass the Web Application Firewall NOTE: this is related to CVE-2022-39956 but can be considered independent changes to the ModSecurity (C language) codebase (CVE-2022-48279) In ModSecurity before 297, FILES_TMP_CONTENT sometimes lacked ...
Description<!---->A vulnerability was found in ModSecurity This issue occurs when FILES_TMP_CONTENT lacks complete content, which can lead to a Web Application Firewall bypassA vulnerability was found in ModSecurity This issue occurs when FILES_TMP_CONTENT lacks complete content, which can lead to a Web Application Firewall bypass ...